Benefits:
Provides IPSec VPN and SSL VPN in a Single Box
ZyWALL USG 300 is a Unified Security Gateway that
integrates comprehensive enterprise-class security features
tailored for SMB (Small and Medium-sized Businesses).
With streamlined integration of both IPSec VPN and SSL
VPN technologies, the ZyWALL USG 300 is an ideal solution
for organizations requiring intensive VPN applications
across distributed networks. No matter you are in a
remote branch office or at an unreliable hotel hotspot,
the ZyWALL USG 300 can establish secure communication
tunnels with IPSec and/or SSL protection. Another benefit
of the integration is that the user-aware access control,
scheduling, bandwidth usage and anti-threat security
features can be enforced against inbound and outbound
traffics of the protected network resources.
Real-time Protection against Ever-Evolving Threats
By integrating cutting-edge technologies on a robust
platform, the ZyWALL USG 300 is competent to provide
multi-layered security for security-aware businesses.
Powered by Kaspersky Labs, the gateway anti-virus security
service on ZyWALL USG 300 has the world’s shortest response
time against emerging viruses; as a result, it helps
stopping threats on the network edge and keeps viruses/malwares
out of corporate networks. With dual SecuASIC (security
co-processor) built-in, the ZyWALL USG 300 can still
deliver robust and reliable performance even under heavy
networking loads. In addition, the IDP feature can detect
harmful attacks and take necessary actions against the
malicious or suspicious activities. The signature-based
IDP engine can effectively detect protocol or traffic
anomalies, support behavior pattern matching and prevent
malicious attacks on the application layer.
Application Patrol to Manage the Use of IM/P2P Applications
The ZyWALL USG 300 is specially crafted to manage
the use of IM/P2P applications in modern networking
environments without hassle. Armed with AppPatrol, a
central dashboard for managing various types of IM/P2P
applications, security staff can easily create fine-grained
access policies based on ever-changing security needs:
identifying and restricting different access levels
of prevailing IM/P2P protocols, restricting time of
access for different groups of users, enforcing bandwidth
quota against certain types of P2P application and prioritizing
VoIP traffics to ensure best call quality over slow
WAN ISP links. Altogether, the ZyWALL USG 300 is an
ideal solution to solve the dilemma in terms of productivity
and security.
User-Aware Policy Engine Enables Access Granularity
In addition to basic access control capabilities,
the intelligent user-aware policy engine on the ZyWALL
USG 300 is designed to make packet-forwarding decisions
based on multiple criteria (such as user ID, user group,
time of access and network quota, etc.). Furthermore,
security staff can apply access policies against a variety
of security features such as VPN, Content Filter and
Application Patrol. In conjunction with VLAN and custom
security zones, corporate security policies can be effectively
enforced to prevent unauthorized access to the network
resources.
Bandwidth Management Ensures Quality of Service
The ZyWALL USG 300 provides bandwidth management
features for traffic prioritization to guarantee or
restrict bandwidth usage per interface/protocol. Security
staff can allocate bandwidth for a variety of applications
or computer hosts on the corporate network, regardless
of the direction of the connection. For example, it’s
possible to assign higher priority and larger bandwidth
to time-critical applications such as VoIP and video
conferencing for quality transmission services. In addition,
the ZyWALL USG 300 allows you to keep track of bandwidth
usage with comprehensive statistical reports.
VoIP Security: Protecting the Converged Networks
Attracted by the benefits, more and more businesses
are deploying VoIP applications on their networks. Along
with the transition to VoIP also comes with security
risks and voice quality issues. As a VoIP-friendly firewall,
the ZyWALL USG 300 reduces the security risks associated
with the adoption of VoIP by offering the SIP/H.323
ALG feature to dynamically open only the required ports
during VoIP calls; once the call is complete, the opened
ports are automatically closed to prevent port sniffing.
The IDP feature can detect and prevent attacks usually
associated with VoIP deployments. Ultimately, by establishing
VoIP traffics over VPNs with traffic prioritization,
security staff can minimize security breaches while
optimizing call quality over the existing ISP links.
High Availability Features Guarantee Non-Stop Operations
for Mission-Critical Applications
With the High Availability features, the ZyWALL USG
300 helps the security staff to easily set up a highly
reliable and secure network infrastructure for your
business. To minimize the impact of single-point failures,
the ZyWALL USG 300 supports device HA (High Availability)
to assure network availability should any device failure
happen.
On the WAN side, the ZyWALL USG 300 can connect multiple
ISP links to ensure Internet availability in case a
single ISP link becomes unreliable. The multiple- WAN
load-balancing feature can also optimize the bandwidth
usage over each ISP link.